CVE-2019-6023

MEDIUM

Cybozu Office 10.0.0-10.8.3 - Authenticated Access Restriction Bypass via Address Application

Title source: llm
STIX 2.1

Description

Cybozu Office 10.0.0 to 10.8.3 allows remote authenticated attackers to bypass access restriction which may result in obtaining data without access privileges via the application 'Address'.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry x_refsource_misc
http://jvn.jp/en/jp/JVN79854355/index.html
Vendor Advisory x_refsource_misc
https://kb.cybozu.support/article/36130

Scores

CVSS v3 4.3
EPSS 0.0015
EPSS Percentile 34.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Details

Status published
Products (1)
cybozu/office 10.0.0 - 10.8.3
Published Dec 26, 2019
Tracked Since Feb 18, 2026